Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo
Artwork

Content provided by Kevin Kaminski. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Kevin Kaminski or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.
Player FM - Podcast App
Go offline with the Player FM app!

PortalFuse Weekly Security Update Report (Windows and Edge Edition) – January 21, 2025

10:59
 
Share
 

Manage episode 462532133 series 3611991
Content provided by Kevin Kaminski. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Kevin Kaminski or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

In this week’s PortalFuse Weekly Security Report, we delve into two high-severity vulnerabilities shaking up the cybersecurity landscape.

First, we examine CVE-2025-21325, a critical flaw in Windows Secure Kernel Mode that allows an attacker to escalate privileges by manipulating page table data. We’ll unpack how this vulnerability leads to complete loss of confidentiality, integrity, and availability, and why immediate patching on Windows 10, Windows 11, and Windows Server 2025 systems is essential.

Next, we explore recent security holes in Microsoft Edge stemming from its reliance on the Chromium engine. Notably, CVE-2025-21185 can grant unauthorized access to sensitive information via crafted URLs. We’ll also break down the technical details of related Chromium vulnerabilities, from out-of-bounds memory access in the V8 engine to insufficient data validation in Extensions.

Join us as we provide expert guidance on mitigating these threats, including the latest Microsoft KB updates and Edge version 132.0.2957.115. We’ll share best practices for patch management, browser security policies, and proactive monitoring to keep your organization safe in an evolving threat environment.

Tune in and stay informed with PortalFuse Weekly Security Report!

  continue reading

40 episodes

Artwork
iconShare
 
Manage episode 462532133 series 3611991
Content provided by Kevin Kaminski. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Kevin Kaminski or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

In this week’s PortalFuse Weekly Security Report, we delve into two high-severity vulnerabilities shaking up the cybersecurity landscape.

First, we examine CVE-2025-21325, a critical flaw in Windows Secure Kernel Mode that allows an attacker to escalate privileges by manipulating page table data. We’ll unpack how this vulnerability leads to complete loss of confidentiality, integrity, and availability, and why immediate patching on Windows 10, Windows 11, and Windows Server 2025 systems is essential.

Next, we explore recent security holes in Microsoft Edge stemming from its reliance on the Chromium engine. Notably, CVE-2025-21185 can grant unauthorized access to sensitive information via crafted URLs. We’ll also break down the technical details of related Chromium vulnerabilities, from out-of-bounds memory access in the V8 engine to insufficient data validation in Extensions.

Join us as we provide expert guidance on mitigating these threats, including the latest Microsoft KB updates and Edge version 132.0.2957.115. We’ll share best practices for patch management, browser security policies, and proactive monitoring to keep your organization safe in an evolving threat environment.

Tune in and stay informed with PortalFuse Weekly Security Report!

  continue reading

40 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play